Welcome to Linux Forums! With a comprehensive Linux Forum, information on various types of Linux software and many Linux Reviews articles, we have all the knowledge you need a click away, or accessible via our knowledgeable members.
Find the answer to your Linux question:
New to Linux Forums? Register here for free!
    Linux Forums > GNU Linux Zone > Wireless Internet > Re inject tcpdump capture

Forgot Password?
 Wireless Internet   Anything related to getting wireless set up in Linux. WLAN, WiFi, etc.

Site Navigation
Linux Articles
Linux Forums
Linux Downloads
Linux Hosting
Free Magazines
Job Board
IRC Chat
RSS Feeds


Linux Forum Topics
Linux Forums
Your Distro
Linux Resources
GNU Linux Zone
The Community
Reply
 
Thread Tools Display Modes
Old 11-27-2007   #1 (permalink)
Just Joined!
 
Join Date: Nov 2007
Posts: 11
Re inject tcpdump capture

Does anybody know a (more or less) simple way to re inject wireshark dump into a wireless network ?

The purpose would be to test a wireless intrusion detection system on a sample capture of a usual wireless network traffic. This WIDS use Kismet wireless and I would like to inject the captured dump into kismet.
b0bjes is offline  


Reply With Quote
Old 11-27-2007   #2 (permalink)
Linux Engineer
 
RobinVossen's Avatar
 
Join Date: Aug 2007
Location: The Netherlands
Posts: 1,319
Send a message via ICQ to RobinVossen Send a message via MSN to RobinVossen
I know how to do that.
Are you connected already?
__________________
My webpage: codeinject.org
New Users, please read this..
Google first, then ask..
RobinVossen is offline   Reply With Quote
Old 11-27-2007   #3 (permalink)
Just Joined!
 
Join Date: Nov 2007
Posts: 11
How can I do that ?
b0bjes is offline   Reply With Quote
Old 11-27-2007   #4 (permalink)
Linux Engineer
 
RobinVossen's Avatar
 
Join Date: Aug 2007
Location: The Netherlands
Posts: 1,319
Send a message via ICQ to RobinVossen Send a message via MSN to RobinVossen
You didnt answer my Question.
are you connected already.
And I am not sure if I should tell you, since I dont want people to do stupid Stuff..

Cheers,
Robin
__________________
My webpage: codeinject.org
New Users, please read this..
Google first, then ask..
RobinVossen is offline   Reply With Quote
Old 11-27-2007   #5 (permalink)
Just Joined!
 
Join Date: Nov 2007
Posts: 11
What do you mean by "connected already" ?
And you should tell me I'm not doing stupid stuff I really need to accomplish that in order to test my Wireless IDS corerctly. Tell me what you need ...
b0bjes is offline   Reply With Quote
Old 11-27-2007   #6 (permalink)
Linux Engineer
 
RobinVossen's Avatar
 
Join Date: Aug 2007
Location: The Netherlands
Posts: 1,319
Send a message via ICQ to RobinVossen Send a message via MSN to RobinVossen
I guess I just have to trust you on your word. But well.
Connect already to the Wireless Access point?
After that you should take a look into hping.
__________________
My webpage: codeinject.org
New Users, please read this..
Google first, then ask..
RobinVossen is offline   Reply With Quote
Old 11-27-2007   #7 (permalink)
Just Joined!
 
Join Date: Nov 2007
Posts: 11
I am connected to the access point (which is not connected to the internet).
I had a quick look on hping ... I was already using this kind of program (scapy which is an excellent injection program written in python). But does hping allow me to reinject directly a tcpdump capture ?
b0bjes is offline   Reply With Quote
Old 11-27-2007   #8 (permalink)
Linux Engineer
 
RobinVossen's Avatar
 
Join Date: Aug 2007
Location: The Netherlands
Posts: 1,319
Send a message via ICQ to RobinVossen Send a message via MSN to RobinVossen
Well I always use hping, I once wrote a Script to Eject the tcpdump file into hping tasks. It was a really simple small script.
I hope I still have it for yea.
But ofc you can always write it yourself.

I dont like scrappy. But thats for the same reason I dont like Vi or java.

Cheers,
Robin
__________________
My webpage: codeinject.org
New Users, please read this..
Google first, then ask..
RobinVossen is offline   Reply With Quote
Old 11-27-2007   #9 (permalink)
Just Joined!
 
Join Date: Nov 2007
Posts: 11
Ok thanks a lot. If you find this script I would be very happy to be able to reuse it.
Thanks for all this useful information anyway.
b0bjes is offline   Reply With Quote
Old 11-27-2007   #10 (permalink)
Linux Engineer
 
RobinVossen's Avatar
 
Join Date: Aug 2007
Location: The Netherlands
Posts: 1,319
Send a message via ICQ to RobinVossen Send a message via MSN to RobinVossen
Well Ill hope I have it for you before Fryday.
Since today is my Anervesery. So when I get home I wont go to the PC.
Tomorrow Ill have to work from 8am till 8pm.

So in the meanwhile Id look further if Id were you.
But Ill look for the script for you also you can rewrite my script its really not that hard.

Cheers,
Robin
__________________
My webpage: codeinject.org
New Users, please read this..
Google first, then ask..
RobinVossen is offline   Reply With Quote
Reply


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off

Free Magazines
Run Your Own Web Server Using Linux & Apache - Free 191 Page Preview
Learn about everything you'll need to build and maintain your Linux servers, and to deploy Web applications to them.
subscribe
Open Source Security Myths Dispelled
Dispel the five major myths surrounding Open Source Security and gain the tools necessary to make a truly informed decision for your IT organization
subscribe
InformationWeek
InformationWeek is the only newsweekly you'll need to stay on top of the latest developments in information technology.
subscribe



All times are GMT. The time now is 02:49 PM.






© 2000 - 2009 - All Rights Reserved - Property of  MAS Media

Content Relevant URLs by vBSEO 3.3.0 RC2